US: Iranian Hackers Breached Government with Log4ShellInfosecurity Magazine·Nov 17, 10:10 UTC · Nov 17, 2022Data breach57
Log4Shell Still Being Exploited to Hack VMWare Servers to Exfiltrate Sensitive DataThe Hacker News·Jun 24, 07:37 UTC · Jun 24, 2022VulnerabilityCVE-2021-44228CVE-2022-2295447
Chinese Hackers Target VMware Horizon Servers with Log4Shell to Deploy RootkitThe Hacker News·Apr 2, 03:48 UTC · Apr 2, 2022Malware42
Initial Access Broker Involved in Log4Shell Attacks Against VMware Horizon ServersThe Hacker News·Jan 29, 06:06 UTC · Jan 29, 2022Ransomware in the wild60
Iran-linked APT35 group exploits Log4Shell to deploy a new backdoorSecurity Affairs·Jan 12, 11:22 UTC · Jan 12, 2022Malware55
Researchers Warn of New Log4ShellInfosecurity Magazine·Jan 7, 09:26 UTC · Jan 7, 2022VulnerabilityCVE-2021-4239260
Log4Shell is a dumpster fire that should have been avoidedHelp Net Security·Dec 23, 00:00 UTC · Dec 23, 2021Exploit / PoCCVE-2021-4422860
CISA, Five Eyes issue guidance meant to slow Log4Shell attacksCyberScoop·Dec 22, 17:03 UTC · Dec 22, 2021Ransomware in the wild60
Week in review: Log4Shell updates, Kronos ransomware attack, unused identities threatHelp Net Security·Dec 19, 00:00 UTC · Dec 19, 2021Ransomware in the wildCVE-2021-44228CVE-2021-4389060
Hackers exploit Log4Shell to drop Khonsari RansomwareSecurity Affairs·Dec 14, 20:57 UTC · Dec 14, 2021RansomwareCVE-2021-4422860
CISA adds Log4Shell flaw to the Known Exploited Vulnerabilities CatalogSecurity Affairs·Dec 13, 13:44 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-44228CVE-2021-44515CVE-2021-44168+10 CVEs60
Log4Shell was in the wild at least nine days before public disclosureSecurity Affairs·Dec 13, 09:47 UTC · Dec 13, 2021Exploit / PoC in the wildCVE-2021-22448CVE-2021-4422860
Quebec shuts down thousands of sites as disclosure of the Log4Shell flawSecurity Affairs·Dec 12, 20:27 UTC · Dec 12, 2021Exploit / PoCCVE-2021-4422860
Logout4Shell, a vaccine for Log4Shell Apache Log4j RCESecurity Affairs·Dec 11, 10:05 UTC · Dec 11, 2021VulnerabilityCVE-2021-4422860
Log4Shell, ProxyLogon and Atlassian bug top CISA\'s list of routinely exploited vulnerabilities in 2021The Record·Jan 12, 00:00 UTC · Jan 12, 2023Vulnerability in the wildCVE-2020-1472CVE-2018-13379CVE-2019-11510+3 CVEs60
Five Eyes issue joint advisory for defending against Log4ShellThe Record·Jan 4, 00:00 UTC · Jan 4, 2023Advisory42
Text4Shell, an RCE bug in Apache Commons Text librarySecurity Affairs·Oct 19, 22:51 UTC · Oct 19, 2022VulnerabilityCVE-2022-42889CVE-2021-4422847
Apache Commons Text flaw is not a repeat of Log4Shell (CVE-2022-42889)Help Net Security·Oct 19, 00:00 UTC · Oct 19, 2022Vulnerability in the wildCVE-2022-4288960
CISA's new JCDC worked as intended, witnesses say at Senate hearing on Log4Shell bugCyberScoop·Feb 8, 18:22 UTC · Feb 8, 2022Exploit / PoC in the wild60
VMware urges to patch VMware Horizon servers against Log4j attacksSecurity Affairs·Jan 26, 13:21 UTC · Jan 26, 2022VulnerabilityCVE-2021-44228CVE-2021-4504660
A new attack vector exploits the Log4Shell vulnerability on servers locallySecurity Affairs·Dec 20, 07:41 UTC · Dec 20, 2021Vulnerability in the wild57
Two Linux botnets already exploit Log4Shell flaw in Log4jSecurity Affairs·Dec 13, 07:36 UTC · Dec 13, 2021Malware42
Log4Shell update: Attack surface, attacks in the wild, mitigation and remediationHelp Net Security·Dec 13, 00:00 UTC · Dec 13, 2021Ransomware in the wildCVE-2021-44228160
H1 2022: Malware and Vulnerability Trends ReportRecorded Future·Aug 22, 00:00 UTC · Aug 22, 2025VulnerabilityCVE-2021-34473CVE-2021-34523CVE-2021-31207160
Log4Shell shows no sign of fading, spotted in 30% of CVE exploitsHelp Net Security·May 14, 00:00 UTC · May 14, 2024Exploit / PoCCVE-2017-9841CVE-2021-4422860
FritzFrog Returns with Log4Shell and PwnKit, Spreading Malware Inside Your NetworkThe Hacker News·Feb 2, 04:51 UTC · Feb 2, 2024MalwareCVE-2021-4034CVE-2024-22768CVE-2024-22772+1 CVEs35
FritzFrog botnet is exploiting Log4Shell bug now, experts sayThe Record·Feb 1, 20:16 UTC · Feb 1, 2024Malware30
Lazarus Group Targets Log4Shell Flaw Via Telegram BotsInfosecurity Magazine·Dec 11, 17:00 UTC · Dec 11, 2023Threat actorCVE-2021-4422860
Week in review: Log4Shell lingers, NIS2 directive adopted, LastPass breached (again)Help Net Security·Dec 4, 00:00 UTC · Dec 4, 2022Data breach in the wildCVE-2021-3558760
Iranian Hackers Compromised a U.S. Federal Agency’s Network Using Log4Shell ExploitThe Hacker News·Nov 17, 08:45 UTC · Nov 17, 2022Data breachCVE-2021-4422860
Week in review: Log4Shell exploitation, DevSecOps myths, 56 vulnerabilities impacting OT devicesHelp Net Security·Jun 26, 00:00 UTC · Jun 26, 2022VulnerabilityCVE-2021-4422847
Log4Shell Used in a Third of Malware InfectionsInfosecurity Magazine·Mar 30, 09:47 UTC · Mar 30, 2022Malware42
Google Cloud offers good news and bad news on Log4Shell, other issuesCyberScoop·Feb 15, 17:25 UTC · Feb 15, 2022Exploit / PoC in the wild60
China-linked APT Aquatic Panda leverages Log4Shell in recent attackSecurity Affairs·Dec 30, 05:36 UTC · Dec 30, 2021Vulnerability42
Microsoft Patch Tuesday, December 2021 EditionKrebs on Security·Dec 15, 00:00 UTC · Dec 15, 2021Vulnerability in the wildCVE-2021-43890CVE-2021-43905CVE-2021-43883+1 CVEs60
North Korean hacking ops continue to exploit Log4ShellCyberScoop·Dec 11, 13:00 UTC · Dec 11, 2023Ransomware in the wild60
Iran-linked threat actors compromise US Federal NetworkSecurity Affairs·Nov 17, 07:58 UTC · Nov 17, 2022Threat actor in the wildCVE-2021-4422860
Allies Warn of Iranian Ransom Attacks Using Log4ShellInfosecurity Magazine·Sep 16, 10:30 UTC · Sep 16, 2022RansomwareCVE-2021-44228CVE-2021-45046CVE-2021-4510560
FTC warns legal action against businesses who fail to mitigate Log4J attacksSecurity Affairs·Jan 5, 14:51 UTC · Jan 5, 2022Policy & legalCVE-2021-4422860
Chinese APT Hackers Used Log4Shell Exploit to Target Academic InstitutionThe Hacker News·Dec 30, 10:07 UTC · Dec 30, 2021VulnerabilityCVE-2021-4422860